VYPR
Low severity3.6NVD Advisory· Published Jun 9, 2026

CVE-2026-41974

CVE-2026-41974

Description

A permission control vulnerability in service notifications on Huawei devices could lead to availability issues.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A permission control vulnerability in service notifications on Huawei devices could lead to availability issues.

Vulnerability

A permission control vulnerability exists in service notifications on HUAWEI Phones/Tablets and HUAWEI Vision devices. This vulnerability affects specific versions of HarmonyOS and EMUI, including HarmonyOS 4.3.1, 4.3.0, 4.2.0, 4.0.0, and EMUI 15.0.0, 14.2.0, 14.0.0 [1]. It also affects HarmonyOS 4.3.0 for HUAWEI Vision devices [2].

Exploitation

Details regarding the specific conditions or steps required for exploitation are not yet disclosed in the available references. However, the vulnerability lies within the permission control of service notifications.

Impact

Successful exploitation of this vulnerability may affect the availability of the affected services [1, 2].

Mitigation

HUAWEI has released security updates that include patches for this vulnerability. Specific fixed versions are not explicitly detailed for this CVE, but the updates were released in June 2026 [1, 2]. Users are advised to apply the latest security updates provided by HUAWEI.

AI Insight generated on Jun 9, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

No source-code context for this CVE — mechanics is only generated when we can read the actual fix diff. Without that, the four sections (root cause, attack vector, affected code, fix) would be speculation rather than analysis.

References

2

News mentions

1